CVE-2017-6223 Vulnerability Details

  /     /     /  

CVE-2017-6223 Metadata Quick Info

CVE Published: 13/10/2017 | CVE Updated: 16/09/2024 | CVE Year: 2017
Source: brocade | Vendor: Brocade Communications Systems, Inc. | Product: Zone Director Controller Firmware
Status : PUBLISHED

CVE-2017-6223 Description

Ruckus Wireless Zone Director Controller firmware releases ZD9.9.x, ZD9.10.x, ZD9.13.0.x less than 9.13.0.0.232 contain OS Command Injection vulnerabilities in the ping functionality that could allow local authenticated users to execute arbitrary privileged commands on the underlying operating system.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Authenticated Root Command Injection
Source: Brocade Communications Systems, Inc.

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).